URLhaus Database

You are currently viewing the URLhaus database entry for https://gendengflix.com/prs/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634516
URL: https://gendengflix.com/prs/?1
URL Status:Offline
Host: gendengflix.com
Date added:2023-05-16 19:10:17 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 19:11:15 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:2 days, 2 hours, 22 minutes Poor (down since 2023-05-18 21:33:51 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Sqmsde.jsjs d7522ab4f64ae0950e24bb00df9157136bbcb900ace0c77bd1a46f06149bf37aVirustotal results 24.56% 
2023-05-18Bvyn.jsjs c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021aVirustotal results 29.09% 
2023-05-18Ftcrvee.jsjs 8f29c702a43f99c1cfc18167ff61035ac4068757aba92e0eb5e9dde5ad72a0cdVirustotal results 31.03% Quakbot
2023-05-18Cmdqoh.jsjs 213ee67765673cf53e5f361c49a1bfe40187ecfa07f72bd5a77d13e1f437edf4Virustotal results 27.12% Quakbot
2023-05-18Hyytpiey.jsjs b8080e6708e687876e70fb9577bdb538b92f84133aae0cd311c456094c77efb9Virustotal results 25.86% Quakbot
2023-05-18Wjfonm.jsjs 50181b4f3b73fded444a5822e9aae57537b05f693c1a1887d0f8b54f0f597de3Virustotal results 24.14% Quakbot
2023-05-18Zqqmxjca.jsjs 0b7fccf63d874ff825b5a3e790311b7dd0923c82b142520db78f43a8191e9216Virustotal results 22.41% Quakbot
2023-05-18Jwgzmb.jsjs 9e158a8d22dc98e3ae057267f1f3abc2cabc910f829c052269762460d602479aVirustotal results 25.86% Quakbot
2023-05-18Qthh.jsjs 0651c77d8fadac8f6e3798ca1534ef6af11482867d22cfb20df41d868c3cc727n/a 
2023-05-17Zeqcvg.jsjs 8b5a063138d39c424fbf7ce7022dc972afa3c2df792b3a030272c1c77490dc96n/a Quakbot
2023-05-17Joocddt.jsjs f5aa3695ae64a4d74e1b05d3df7788674c2071ec3266a262521991149f02fc95Virustotal results 16.95% Quakbot
2023-05-17Faek.jsjs fd0ca1aeb929c31a64a1ec9c5027c0c2c644161a6fe7faacf6ea8ec30ca8806an/a Quakbot
2023-05-17Nykndo.jsjs a3a82b0e5a194f3c627df166b34ee132214dd6dd7f04b7a684d1b93af75f7591Virustotal results 32.20% Quakbot
2023-05-17Jjhx.jsjs 215820e48ebfa9dbcba7260a2176ccbb21df119cff17a8389f165811c8e3664bVirustotal results 31.03% Quakbot
2023-05-17Teqt.jsjs 028981687a2254e22ca965537b4ed290d1dca3b0b682da744c55d1763c98565an/a Quakbot
2023-05-17Pdhti.jsjs 3d234411a958948cb4805e18eb29cd95fbd93086ffda9ed636c6d322523b5e80n/a Quakbot
2023-05-17Avvusld.jsjs f62e81e5e0e4556e92fbda3ffd6039bcac9f84cdec61de1a64f7c9ce48ac5e38n/a Quakbot
2023-05-17Yugjii.jsjs 1627aaf0dc8d9d67f24279bdc2e27f4119df90d949d4b30155931b1421769d8cn/a Quakbot
2023-05-17Sairw.jsjs afa080c73909fceeddb8f9cbe4f1e0385b747356d274efd9857d9faa6dcdfdbcn/a Quakbot
2023-05-17Ynxauor.jsjs d37b4943929bfaa5493fbaf5eeddb21f04abfd25aa4b9ba6ef21d6b8498b185bn/a Quakbot
2023-05-17Bhaatlwm.jsjs 64d00e8fdfe4564b2419eca03a8ddfab0f5847561824eff650b4c007a3711873n/a Quakbot
2023-05-17Jraf.jsjs 8f89fbbd1ce923cba0eeffbb57ed5129c774c3ae47d4bc5dc8cc353a57b8ef4dn/a Quakbot
2023-05-17Lirriomf.jsjs 91dd597c2a1b79a54abacfeec2db545d7cd7980e5a769e162c3329e29059817dn/a Quakbot
2023-05-16Ktmqnf.jsjs d64268f348c8ade5b2d63a32776153b0c0e8e7f841aa087f5cf150a10c115a73n/a Quakbot
2023-05-16Nvpohvn.jsjs e9b707cc6a9644df1263f5221ea3d4dc349cc5c02228a084a560ddb64aec4778n/a Quakbot
2023-05-16Hkrsn.jsjs ac00743ba53544f7d953a82ce410ed4e14bf6b5df31177ee7ee4a0db005ea4den/a Quakbot
2023-05-16Aszga.jsjs 474969583e616fe60b2012ea4bbf057fbea6e6b0c30947f574c62ec7197aedc4n/a Quakbot